|
|
| |
|
| |
squid: denial of service
| Package(s): | squid |
CVE #(s): | CVE-2011-4096
|
| Created: | November 18, 2011 |
Updated: | January 6, 2012 |
| Description: |
From the Red Hat bugzilla:
An invalid free flaw was found in the way Squid proxy caching server processed
DNS requests, where one CNAME record pointed to another CNAME record pointing
to an empty A-record. A remote attacker could issue a specially-crafted DNS
request, leading to denial of service (squid daemon abort).
|
| Alerts: |
|
( Log in to post comments)
|
|
|